ZeroHour

CVE-2020-24590

CVSS 3.1
9.1 critical
EPSS
1%p68
Published
()
Modified
Description

The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML Entity Expansion attacks.

Vendors
wso2
Products
api manager, api microgateway
Weakness
CWE-776
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.